{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b188a035-d1b5-50e2-bcbd-b5c24938c958",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4",
      "type": "library",
      "group": "org.springframework",
      "name": "spring-webmvc",
      "version": "6.0.23-tuxcare.4",
      "purl": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0b646ea3-bb3d-5f4f-acbc-370626d628a8",
      "id": "CVE-2024-38816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38816 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b87594d7-1061-54f5-9113-d357ab8a0991",
      "id": "CVE-2024-38819",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38819 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a70fdf25-5521-52ca-a3d1-9788924c14b9",
      "id": "CVE-2024-38820",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38820 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afa4ddf8-62b9-5632-8aa0-896a24fa6ef5",
      "id": "CVE-2025-22233",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-22233 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb54e4f0-7842-5896-bf28-fd01c0e29c69",
      "id": "CVE-2025-41234",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-41234 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f54c3270-7d24-53d4-9b85-7db7e327dd47",
      "id": "CVE-2025-41242",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41242 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43309cd5-6fa6-5c3a-bc3d-88e5d3d47184",
      "id": "CVE-2025-41249",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41249 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:677ecc17-367f-5696-b28e-f6ce151450cb",
      "id": "CVE-2025-41254",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-41254 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d22e5d2-2cb5-5105-82be-e73ac88b6eae",
      "id": "CVE-2026-22735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22735 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef16da70-efb6-5fc1-981b-d499e56fff45",
      "id": "CVE-2026-22737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22737 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c3371b6-2f79-589a-8bc6-43b6c0e01bf3",
      "id": "CVE-2026-22740",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22740 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2938a00a-048b-5d9a-8a0e-62c784f35e80",
      "id": "CVE-2026-22741",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22741 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3a60c2d-6ffa-5d0d-b384-4ec67862dc85",
      "id": "CVE-2026-22745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22745 is fixed in version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f595e90b-ac8b-50e1-ae36-7b97b2e23d56",
      "id": "CVE-2026-41838",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41838 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb9c128b-cdbd-50a4-8ef4-c6484b8cc5c9",
      "id": "CVE-2026-41839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41839 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4c6b65e-5f26-5ee2-82e8-fb60d512535c",
      "id": "CVE-2026-41840",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41840 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfff29c3-70a6-5689-9d06-e8d9fd142cdc",
      "id": "CVE-2026-41841",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41841 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb211659-d4c6-5f69-85b0-8525decaaa85",
      "id": "CVE-2026-41842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41842 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d734675-e423-5bf6-b4e9-c85de868daed",
      "id": "CVE-2026-41843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41843 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4c960b3-13de-5c0b-a355-27f6e6b87e83",
      "id": "CVE-2026-41844",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41844 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e59001a1-aae0-512c-bba4-29a1c478a674",
      "id": "CVE-2026-41845",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41845 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ce19e70-aa1d-5250-aaea-306be4ad1acc",
      "id": "CVE-2026-41846",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41846 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:355b4e42-f94e-5236-83db-a4260fa94dc8",
      "id": "CVE-2026-41848",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41848 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94fd01e4-eed1-5cf3-89a6-5b8c180f34d0",
      "id": "CVE-2026-41850",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41850 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45009a50-3bd0-53bc-afd9-090e5cf66f3f",
      "id": "CVE-2026-41851",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41851 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f444800a-ba23-55cd-9aa6-f1b0f0587530",
      "id": "CVE-2026-41852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41852 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b59a24b5-28a0-5a20-8aba-f4d2f000fabb",
      "id": "CVE-2026-41853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41853 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f932933-ebbe-5237-b63f-3aef4250c4c8",
      "id": "CVE-2026-41854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41854 affects version 6.0.23-tuxcare.4 of org.springframework:spring-webmvc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.springframework/spring-webmvc@6.0.23-tuxcare.4"
    }
  ]
}